Hackers manage to hack and reprogram Apple AirTag. It’s been a short while since Apple launched the AirTag, to compete with Tile, a similar product. Now a security researcher is able to hack the AirTag, by modifying its NFC URL for Lost Mode.
Stack Smashing, a German security researcher was able to hack into the microcontroller of the tracker and reprogram it to modify the elements of the tracker software with new information.
The hack demonstrates a threat model, it is similar to leaving a “lost” USB device in front of a company. A hacker can compromise by leaving a set of “lost” keys or wallet with a reprogrammed AirTag, which the employees can scan with or have their iPhone compromised leading to a much bigger attack.
It is not yet clear the full capabilities of the hack attack, but given the fact the AirTags are popular, we can expect to hear a lot more about it soon.
Built a quick demo: AirTag with modified NFC URL 😎
(Cables only used for power) pic.twitter.com/DrMIK49Tu0
— stacksmashing (@ghidraninja) May 8, 2021